Перейти к содержимому
Noroxi

Записи AMD

302 опубликованных записей вендора amd.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
6
С записью об исправлении
19,9 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

302 записей
  • CVE-2019-5049
    41В плане

    An exploitable memory corruption vulnerability exists in AMD ATIDXX64.DLL driver, versions 25.20.15031.5004 and 25.20.15031.9002.

    КритическаяCVSS 10,0Эксплойта нетEPSS 2 %

    amd · radeon rx 550 firmware31 окт. 2019 г.

  • CVE-2020-6103
    40В плане

    An exploitable code execution vulnerability exists in the Shader functionality of AMD Radeon DirectX 11 Driver atidxx64.dll 26.20.15019.1900

    КритическаяCVSS 9,9Эксплойта нетEPSS 3 %

    amd · radeon directx 11 driver atidxx64.dll20 июл. 2020 г.

  • CVE-2020-6101
    40В плане

    An exploitable code execution vulnerability exists in the Shader functionality of AMD Radeon DirectX 11 Driver atidxx64.dll 26.20.15019.1900

    КритическаяCVSS 9,9Эксплойта нетEPSS 3 %

    amd · radeon directx 11 driver atidxx64.dll20 июл. 2020 г.

  • CVE-2020-6102
    40В плане

    An exploitable code execution vulnerability exists in the Shader functionality of AMD Radeon DirectX 11 Driver atidxx64.dll 26.20.15019.1900

    КритическаяCVSS 9,9Эксплойта нетEPSS 3 %

    amd · radeon directx 11 driver atidxx64.dll20 июл. 2020 г.

  • CVE-2019-7247
    40В плане

    An issue was discovered in AODDriver2.sys in AMD OverDrive.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    amd · overdrive18 мая 2020 г.

  • CVE-2020-6100
    40В плане

    An exploitable memory corruption vulnerability exists in AMD atidxx64.dll 26.20.15019.19000 graphics driver.

    КритическаяCVSS 9,9Эксплойта нетEPSS 2 %

    amd · radeon directx 11 driver atidxx64.dll20 июл. 2020 г.

  • CVE-2023-20591
    40В плане

    Improper re-initialization of IOMMU during the DRTM event may permit an untrusted platform configuration to persist, allowing an attacker to

    КритическаяCVSS 10,0Эксплойта нетEPSS 0 %

    amd · epyc 8024pn firmware13 авг. 2024 г.

  • CVE-2021-26334
    39Наблюдать

    AMD Chipset Driver Information Disclosure Vulnerability

    КритическаяCVSS 9,9Эксплойта нетEPSS 1 %

    amd · amd uprof1 дек. 2021 г.

  • CVE-2023-20596
    39Наблюдать

    Improper input validation in the SMM Supervisor may allow an attacker with a compromised SMI handler to gain Ring0 access potentially leadin

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    amd · ryzen 7 5700g firmware14 нояб. 2023 г.

  • CVE-2023-20586
    39Наблюдать

    Radeon™ Software Crimson ReLive Edition

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    amd · radeon software8 авг. 2023 г.

  • CVE-2022-23821
    39Наблюдать

    Improper access control in System Management Mode (SMM) may allow an attacker to write to SPI ROM potentially leading to arbitrary code exec

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    amd · ryzen 9 3900 firmware14 нояб. 2023 г.

  • CVE-2023-20520
    39Наблюдать

    Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-based buffer overrun

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    amd · epyc 72f3 firmware9 мая 2023 г.

  • CVE-2021-46760
    39Наблюдать

    A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory acces

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    amd · ryzen 3945wx firmware9 мая 2023 г.

  • CVE-2022-23820
    39Наблюдать

    Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM potentially leading to arbitrary code execut

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    amd · ryzen 9 3900 firmware14 нояб. 2023 г.

  • CVE-2021-26379
    39Наблюдать

    Insufficient input validation of mailbox data in the SMU may allow an attacker to coerce the SMU to corrupt SMRAM, potentially leading to a

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    amd · epyc 72f3 firmware9 мая 2023 г.

  • CVE-2023-39281
    39Наблюдать

    A stack buffer overflow vulnerability discovered in AsfSecureBootDxe in Insyde InsydeH2O with kernel 5.0 through 5.5 allows attackers to run

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    insyde · insydeh2o1 нояб. 2023 г.

  • CVE-2019-5183
    37Наблюдать

    An exploitable type confusion vulnerability exists in AMD ATIDXX64.DLL driver, versions 26.20.13031.10003, 26.20.13031.15006 and 26.20.13031

    КритическаяCVSS 9,0Эксплойта нетEPSS 2 %

    amd · atidxx6425 янв. 2020 г.

  • CVE-2018-8930
    37Наблюдать

    The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips have insufficient enforcement of Hardware Validated Boot, aka MASTER

    КритическаяCVSS 9,0Эксплойта нетEPSS 2 %

    amd · ryzen mobile firmware22 мар. 2018 г.

  • CVE-2018-8936
    37Наблюдать

    The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips allow Platform Security Processor (PSP) privilege escalation.

    КритическаяCVSS 9,0Эксплойта нетEPSS 2 %

    amd · ryzen mobile firmware22 мар. 2018 г.

  • CVE-2018-8935
    37Наблюдать

    The Promontory chipset, as used in AMD Ryzen and Ryzen Pro platforms, has a backdoor in the ASIC, aka CHIMERA-HW.

    КритическаяCVSS 9,0Эксплойта нетEPSS 2 %

    amd · ryzen pro firmware22 мар. 2018 г.

  • CVE-2018-8934
    37Наблюдать

    The Promontory chipset, as used in AMD Ryzen and Ryzen Pro platforms, has a backdoor in firmware, aka CHIMERA-FW.

    КритическаяCVSS 9,0Эксплойта нетEPSS 2 %

    amd · ryzen pro firmware22 мар. 2018 г.

  • CVE-2020-12138
    36Наблюдать

    AMD ATI atillk64.sys 5.11.9.0 allows low-privileged users to interact directly with physical memory by calling one of several driver routine

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    amd · atillk6427 апр. 2020 г.

  • CVE-2018-8932
    36Наблюдать

    The AMD Ryzen and Ryzen Pro processor chips have insufficient access control for the Secure Processor, aka RYZENFALL-2, RYZENFALL-3, and RYZ

    КритическаяCVSS 9,0Эксплойта нетEPSS 2 %

    amd · ryzen pro firmware22 мар. 2018 г.

  • CVE-2018-8931
    36Наблюдать

    The AMD Ryzen, Ryzen Pro, and Ryzen Mobile processor chips have insufficient access control for the Secure Processor, aka RYZENFALL-1.

    КритическаяCVSS 9,0Эксплойта нетEPSS 2 %

    amd · ryzen mobile firmware22 мар. 2018 г.

  • CVE-2018-8933
    36Наблюдать

    The AMD EPYC Server processor chips have insufficient access control for protected memory regions, aka FALLOUT-1, FALLOUT-2, and FALLOUT-3.

    КритическаяCVSS 9,0Эксплойта нетEPSS 2 %

    amd · epyc server firmware22 мар. 2018 г.